1. Scope
This Privacy Policy explains how AiAir, LLC (DBA Magic Resume™), referred to as Magic Resume, processes personal information when you use the iOS app, its authenticated APIs, document-generation services, support channels, and related public pages.
2. Information You Provide
We process information you submit, such as name and contact details; Career Profile information; employment, education, skills, certification, and volunteer history; resumes and other source documents; LinkedIn or profile screenshots; job-posting text, screenshots, and URLs; generation preferences; a verified delivery email; and support communications.
3. Information Collected Automatically
The service records operational and security information needed to authenticate requests, enforce quotas and entitlements, diagnose errors, prevent abuse, and protect the service. Depending on AWS service configuration, this can include request time, route, response status, transaction or generation identifiers, IP/network metadata, and limited device or app context. Customer document text and Apple tokens are not intentionally written to application logs.
4. Apple and Sign in with Apple
Sign in with Apple provides an Apple subject identifier and an identity token. If you choose to share them, Apple may also provide your name and email or relay email. Magic Resume stores a one-way hash of the Apple subject for account mapping. When an Apple authorization code and server credential are available, it exchanges the code for a refresh token used only to revoke authorization during account deletion.
5. Career, Resume, and Job Content
Source documents, screenshots, extracted information, Career Profile data, target-job material, generated resumes, scores, Application Kit materials, and tracker activity are processed to provide the requested features. Uploaded and generated objects are stored in private owner-scoped Amazon S3 paths; product and workflow records are stored in owner-scoped Amazon DynamoDB records.
6. Purchase and Entitlement Information
Apple processes payment-card and billing details; Magic Resume does not receive your full payment-card information. We process App Store-signed transaction identifiers, product identifiers, transaction dates, revocation status, and calculated entitlement start/expiration information to verify and restore Pro access and prevent reuse of one transaction by different owners.
7. How We Use Information
We use information to authenticate accounts; build and maintain the Career Profile; analyze source and target-job content; generate and render documents; calculate scores; provide secure downloads and verified email delivery; maintain application-tracker history; enforce template, artifact, quota, and entitlement rules; restore purchases; respond to support; detect misuse; maintain reliability; and comply with legal obligations.
8. AI Processing
Career and job content may be sent to Amazon Bedrock models in the configured AWS environment to extract, analyze, and draft requested content. Supporting AWS services may include Textract for document text extraction and Bedrock AgentCore for source-grounded target-role research. AI output is stored only as needed for the requested workflow and remains subject to human review by you.
9. Service Providers
Current providers include Amazon Web Services for identity (Cognito), object storage (S3), structured storage (DynamoDB), compute and APIs (Lambda and API Gateway), queues (SQS), AI processing (Bedrock and AgentCore), document extraction (Textract), email verification/delivery (SES), logging/monitoring, and related security operations; and Apple for Sign in with Apple, StoreKit/App Store purchases, device platform services, and transaction verification. These providers process data under their own applicable terms and service commitments.
10. Sale, Sharing, and Advertising
The audited app code does not sell personal information, does not include a third-party advertising SDK, does not use data for cross-company targeted advertising, and does not request App Tracking Transparency authorization. If those practices change, this Policy and required Apple disclosures must be updated before the change is released.
11. Retention
Career content and generated materials are kept while needed to provide the account and may expire earlier under configured storage lifecycle rules. Temporary authorization proofs expire automatically after a short period. Operational logs and provider records follow their configured retention periods. Account deletion removes active owner-scoped product data as described below. Limited records retained after deletion are described in Section 14.
12. Security
Magic Resume uses authenticated owner-scoped APIs, private storage, encryption in transit, storage encryption, access controls, conditional writes, bounded authorization proofs, and server-side entitlement enforcement. No system is perfectly secure, and we cannot guarantee absolute security.
13. Account Deletion
Profile > Delete Account starts a two-step confirmation. On confirmation, the server deletes owner-scoped Career Profile data, source manifests and uploads, generated artifacts and Application Kits, tracker and dismissal history, quota and delivery-email data, entitlement state, Apple account mapping/auth records, S3 objects, DynamoDB records, and the Cognito application account. Local app/session state is cleared after success. Deletion is idempotent.
14. Limited Records Retained After Deletion
To prevent repeated use of the one-time 24-hour Welcome Pro offer, Magic Resume retains a minimum pseudonymous eligibility record: a one-way hash derived from the Apple sign-in subject, the fact that the offer was consumed, a version, and a timestamp. It does not retain the Career Profile, documents, generated materials, email, name, device fingerprint, or active Apple-to-account mapping. Apple and other providers may also retain transaction, security, or legal records under their own obligations.
15. Privacy Rights
Depending on where you live, you may have rights to request access, correction, deletion, portability, restriction, or objection, and to appeal or complain to a regulator. Some information can be reviewed or corrected in the app, and account deletion is available in Profile. Contact support@magicresume.work for other requests. We may need to verify identity before acting.
16. U.S. State Privacy Rights
Where applicable, U.S. state law may provide rights regarding access, correction, deletion, portability, and certain uses of personal information. The audited service does not sell personal information or share it for cross-context behavioral advertising. We will not discriminate against you for exercising an applicable privacy right.
17. International Users
Magic Resume’s current AWS resources are configured in the United States. If you use the service elsewhere, information may be transferred to and processed in the United States, where privacy laws may differ. Any legally required transfer mechanism must be evaluated for the eventual business entity and launch markets.
18. Children’s Privacy
Magic Resume is a career-document service intended for people age 16 and older and is not directed to children. We do not knowingly collect personal information from anyone under 16. If you believe a child supplied information, contact support@magicresume.work.
19. Changes to This Policy
We may update this Policy when features, providers, retention, or legal requirements change. The in-app version and Last Updated date will be revised, and material changes will receive additional notice when appropriate.
20. Contact
Magic Resume is operated by AiAir, LLC (DBA Magic Resume™). For privacy questions or applicable rights requests, email support@magicresume.work.
21. Effective Date
Version: privacy-v1. Effective and Last Updated: September 24, 2026.